CWE-670
133 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-670page 1 of 3
- CVE-2014-2686HIGHCVSS 7.5EG 7.52020-01-09
Ansible prior to 1.5.4 mishandles the evaluation of some strings.
- CVE-2018-16766HIGHCVSS 8.8EG 8.82018-09-10
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because Errors::unreachable() is reached.
- CVE-2018-19058MEDIUMCVSS 6.5EG 6.52018-11-07
An issue was discovered in Poppler 0.71.0. There is a reachable abort in Object.h, will lead to denial of service because EmbFile::save2 in FileSpec.cc lacks a stream check before saving an embedded file.
- CVE-2018-19212MEDIUMCVSS 6.5EG 6.52018-11-12
In libwebm through 2018-10-03, there is an abort caused by libwebm::Webm2Pes::InitWebmParser() that will lead to a DoS attack.
- CVE-2019-11412HIGHCVSS 7.5EG 7.52019-04-22
An issue was discovered in Artifex MuJS 1.0.5. jscompile.c can cause a denial of service (invalid stack-frame jump) because it lacks an ENDTRY opcode call.
- CVE-2019-17192CRITICALCVSS 9.8EG 9.82019-10-05
The WebRTC component in the Signal Private Messenger application through 4.47.7 for Android processes videoconferencing RTP packets before a callee chooses to answer a call, which might make it easier for remote attackers to cause a denial…
- CVE-2019-19324HIGHCVSS 7.5EG 7.52020-03-20
Xmidt cjwt through 1.0.1 before 2019-11-25 maps unsupported algorithms to alg=none, which sometimes leads to untrusted accidental JWT acceptance.
- CVE-2019-19729HIGHCVSS 7.5EG 7.52019-12-11
An issue was discovered in the BSON ObjectID (aka bson-objectid) package 1.3.0 for Node.js. ObjectID() allows an attacker to generate a malformed objectid by inserting an additional property to the user-input, because bson-objectid will re…
- CVE-2019-20430HIGHCVSS 7.5EG 7.52020-01-27
In the Lustre file system before 2.12.3, the mdt module has an LBUG panic (via a large MDT Body eadatasize field) due to the lack of validation for specific fields of packets sent by a client.
- CVE-2019-9946HIGHCVSS 7.5EG 7.52019-04-02
Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0.7.4 has a network firewall misconfiguration which affects Kubernetes. The CNI 'portmap' plugin, used to setup HostPorts for CNI, inserts rules at the front of …
- CVE-2020-17466CRITICALCVSS 9.8EG 9.82020-08-11
Turcom TRCwifiZone through 2020-08-10 allows authentication bypass by visiting manage/control.php and ignoring 302 Redirect responses.
- CVE-2020-1914CRITICALCVSS 9.8EG 9.82020-10-08
A logic vulnerability when handling the SaveGeneratorLong instruction in Facebook Hermes prior to commit b2021df620824627f5a8c96615edbd1eb7fdddfc allows attackers to potentially read out of bounds or theoretically execute arbitrary code vi…
- CVE-2020-25598MEDIUMCVSS 5.5EG 5.52020-09-23
An issue was discovered in Xen 4.14.x. There is a missing unlock in the XENMEM_acquire_resource error path. The RCU (Read, Copy, Update) mechanism is a synchronisation primitive. A buggy error path in the XENMEM_acquire_resource exits with…
- CVE-2020-25603HIGHCVSS 7.8EG 7.82020-09-23
An issue was discovered in Xen through 4.14.x. There are missing memory barriers when accessing/allocating an event channel. Event channels control structures can be accessed lockless as long as the port is considered to be valid. Such a s…
- CVE-2020-26506MEDIUMCVSS 4.3EG 4.32020-11-05
An Authorization Bypass vulnerability in the Marmind web application with version 4.1.141.0 allows users with lower privileges to gain control to files uploaded by administrative users. The accessed files were not visible by the low privil…
- CVE-2020-35477MEDIUMCVSS 5.3EG 5.32020-12-18
MediaWiki before 1.35.1 blocks legitimate attempts to hide log entries in some situations. If one sets MediaWiki:Mainpage to Special:MyLanguage/Main Page, visits a log entry on Special:Log, and toggles the "Change visibility of selected lo…
- CVE-2020-3596MEDIUMCVSS 5.9EG 5.92020-10-08
A vulnerability in the Session Initiation Protocol (SIP) of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an …
- CVE-2020-36277HIGHCVSS 7.5EG 7.52021-03-11
Leptonica before 1.80.0 allows a denial of service (application crash) via an incorrect left shift in pixConvert2To8 in pixconv.c.
- CVE-2020-3885MEDIUMCVSS 4.3EG 4.32020-04-01
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, tvOS 13.4, Safari 13.1, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. A file URL may be incorrectly …
- CVE-2020-5753MEDIUMCVSS 5.3EG 5.32020-05-20
Signal Private Messenger Android v4.59.0 and up and iOS v3.8.1.5 and up allows a remote non-contact to ring a victim's Signal phone and disclose currently used DNS server due to ICE Candidate handling before call is answered or declined.
- CVE-2020-8671MEDIUMCVSS 5.5EG 5.52020-10-05
Insufficient control flow management in BIOS firmware 8th, 9th Generation Intel(R) Core(TM) Processors and Intel(R) Celeron(R) Processor 4000 Series may allow an authenticated user to potentially enable information disclosure via local acc…
- CVE-2020-9425HIGHCVSS 7.5EG 7.52020-03-20
An issue was discovered in includes/head.inc.php in rConfig before 3.9.4. An unauthenticated attacker can retrieve saved cleartext credentials via a GET request to settings.php. Because the application was not exiting after a redirect is a…
- CVE-2021-0273MEDIUMCVSS 5.3EG 5.32021-04-22
An always-incorrect control flow implementation in the implicit filter terms of Juniper Networks Junos OS and Junos OS Evolved on ACX5800, EX9200 Series, MX10000 Series, MX240, MX480, MX960 devices with affected Trio line cards allows an a…
- CVE-2021-0517HIGHCVSS 7.5EG 7.52021-06-21
In updateCapabilities of ConnectivityService.java, there is a possible incorrect network state determination due to a logic error in the code. This could lead to biasing of networking tasks to occur on non-VPN networks, which could lead to…
- CVE-2021-1236MEDIUMCVSS 5.3EG 5.32021-01-13
Multiple Cisco products are affected by a vulnerability in the Snort application detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. The vulnerability is due to a f…
- CVE-2021-3011MEDIUMCVSS 4.2EG 4.22021-01-07
An electromagnetic-wave side-channel issue was discovered on NXP SmartMX / P5x security microcontrollers and A7x secure authentication microcontrollers, with CryptoLib through v2.9. It allows attackers to extract the ECDSA private key afte…
- CVE-2021-32684MEDIUMCVSS 6.2EG 6.22021-06-14
magento-scripts contains scripts and configuration used by Create Magento App, a zero-configuration tool-chain which allows one to deploy Magento 2. In versions 1.5.1 and 1.5.2, after changing the function from synchronous to asynchronous …
- CVE-2021-34767HIGHCVSS 7.4EG 7.42021-09-23
A vulnerability in IPv6 traffic processing of Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, adjacent attacker to cause a Layer 2 (L2) loop in a configured VLAN…
- CVE-2021-37604HIGHCVSS 7.5EG 7.52021-08-05
In version 6.5 of Microchip MiWi software and all previous versions including legacy products, there is a possibility of frame counters being validated/updated prior to the message authentication. With this vulnerability in place, an attac…
- CVE-2021-37605HIGHCVSS 7.5EG 7.52021-08-05
In version 6.5 Microchip MiWi software and all previous versions including legacy products, the stack is validating only two out of four Message Integrity Check (MIC) bytes.
- CVE-2021-38019MEDIUMCVSS 6.5EG 6.52021-12-23
Insufficient policy enforcement in CORS in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- CVE-2021-41153HIGHCVSS 8.7EG 8.72021-10-18
The evm crate is a pure Rust implementation of Ethereum Virtual Machine. In `evm` crate `< 0.31.0`, `JUMPI` opcode's condition is checked after the destination validity check. However, according to Geth and OpenEthereum, the condition chec…
- CVE-2021-43819HIGHCVSS 7.5EG 7.52023-04-19
Stargate-Bukkit is a mod for the minecraft video game which adds a portal focused environment. In affected versions Minecarts with chests will drop their items when teleporting through a portal; when they reappear, they will still have the…
- CVE-2021-43839HIGHCVSS 7.5EG 7.52021-12-21
Cronos is a commercial implementation of a blockchain. In Cronos nodes running versions before v0.6.5, it is possible to take transaction fees from Cosmos SDK's FeeCollector for the current block by sending a custom crafted MsgEthereumTx. …
- CVE-2021-43979MEDIUMCVSS 5.3EG 5.32021-11-17
Styra Open Policy Agent (OPA) Gatekeeper through 3.7.0 mishandles concurrency, sometimes resulting in incorrect access control. The data replication mechanism allows policies to access the Kubernetes cluster state. During data replication,…
- CVE-2021-45852MEDIUMCVSS 5.3EG 5.32022-03-16
An issue was discovered in Projectworlds Hospital Management System v1.0. Unauthorized malicious attackers can add patients without restriction via add_patient.php.
- CVE-2022-21655HIGHCVSS 7.5EG 7.52022-02-22
Envoy is an open source edge and service proxy, designed for cloud-native applications. The envoy common router will segfault if an internal redirect selects a route configured with direct response or redirect actions. This will result in …
- CVE-2022-21679MEDIUMCVSS 6.8EG 6.82022-01-19
Istio is an open platform to connect, manage, and secure microservices. In Istio 1.12.0 and 1.12.1 The authorization policy with hosts and notHosts might be accidentally bypassed for ALLOW action or rejected unexpectedly for DENY action du…
- CVE-2022-25745CRITICALCVSS 9.8EG 9.82023-04-13
Memory corruption in modem due to improper input validation while handling the incoming CoAP message
- CVE-2022-26461MEDIUMCVSS 6.7EG 6.72022-09-06
In vow, there is a possible undefined behavior due to an API misuse. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07032604; Issue I…
- CVE-2022-26841LOWCVSS 2.5EG 5.52023-02-16
Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16.100.1 may allow an authenticated user to potentially enable information disclosure via local access.
- CVE-2022-26890HIGHCVSS 7.5EG 7.52022-05-05
On F5 BIG-IP Advanced WAF, ASM, and APM 16.1.x versions prior to 16.1.2.1, 15.1.x versions prior to 15.1.5, 14.1.x versions prior to 14.1.4.6, and 13.1.x versions prior to 13.1.5, when ASM or Advanced WAF, as well as APM, are configured on…
- CVE-2022-27808MEDIUMCVSS 6.3EG 7.82023-02-16
Insufficient control flow management in some Intel(R) Ethernet Controller Administrative Tools drivers for Windows before version 1.5.0.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
- CVE-2022-29255HIGHCVSS 8.2EG 8.22022-06-09
Vyper is a Pythonic Smart Contract Language for the ethereum virtual machine. In versions prior to 0.3.4 when a calling an external contract with no return value, the contract address (including side effects) could be evaluated twice. This…
- CVE-2022-29605HIGHCVSS 7.5EG 7.52023-04-20
An issue was discovered in ONOS 2.5.1. IntentManager attempts to install the IPv6 flow rules of an intent into an OpenFlow 1.0 switch that does not support IPv6. Improper handling of the difference in capabilities of the intent and switch …
- CVE-2022-29607HIGHCVSS 7.5EG 7.52023-04-20
An issue was discovered in ONOS 2.5.1. Modification of an existing intent to have the same source and destination shows the INSTALLED state without any flow rule. Improper handling of such an intent is misleading to a network operator.
- CVE-2022-29609MEDIUMCVSS 5.3EG 5.32023-04-20
An issue was discovered in ONOS 2.5.1. An intent with the same source and destination shows the INSTALLING state, indicating that its flow rules are installing. Improper handling of such an intent is misleading to a network operator.
- CVE-2022-2993HIGHCVSS 8.6EG 8.62022-12-09
There is an error in the condition of the last if-statement in the function smp_check_keys. It was rejecting current keys if all requirements were unmet.
- CVE-2022-31017LOWCVSS 2.0EG 2.02022-06-25
Zulip is an open-source team collaboration tool. Versions 2.1.0 through and including 5.2 are vulnerable to a logic error. A stream configured as private with protected history, where new subscribers should not be allowed to see messages s…
- CVE-2022-31111MEDIUMCVSS 5.3EG 5.32022-07-06
Frontier is Substrate's Ethereum compatibility layer. In affected versions the truncation done when converting between EVM balance type and Substrate balance type was incorrectly implemented. This leads to possible discrepancy between appe…
Map vulnerabilities like CWE-670 to your infrastructure
EchelonGraph correlates every CVE — across CWE-670 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →